Rivoreo Source Code Repositories
src.rivoreo.one
/
net
/
ipfilter
/
0c60768154b5b3f378b5ae4e0a88919ba779e706
0c60768
call of _pullup() high up in _icmp() means later checks for fin_dlen that are less than 8 are not required.
by Darren Reed
· 17 years ago
84864dd
the pair of ports checked when adding an entry with SIOCSTPUT is wrong for MAPs
by Darren Reed
· 17 years ago
ec3d045
cleanup some errors in merging patches
by Darren Reed
· 17 years ago
bc66443
try and optimise fr_movequeue and short cut some cases where there is no
by Darren Reed
· 17 years ago
92209c0
preserve and restore the fin_flx bits from the packet before it is authorised
by Darren Reed
· 17 years ago
467ef1e
build for freebsd8
by Darren Reed
· 17 years ago
5743029
1915176 Use of "age X/Y" can lead to panic
by Darren Reed
· 17 years ago
f5cf24e
Improve NAT performance by reducing when an exclusive lock is required
by Darren Reed
· 17 years ago
f0d14b6
merge changes from netbsd for updated poll apis
by Darren Reed
· 17 years ago
72e8cd9
1887931 kernel panic - when tcp fragment is received
by Darren Reed
· 17 years ago
5fa2464
1890025 sync code uses state table for nat objects
by Darren Reed
· 17 years ago
15dfb6a
1886965 sync code does not wakeup sleeping polls
by Darren Reed
· 17 years ago
2a42054
1886836 open on devices not compiled in always succeeds
by Darren Reed
· 17 years ago
405effa
1872740 the ipfr_size tunable is ignored
by Darren Reed
· 17 years ago
1e82064
1885583 ipmon does not always honour -L option
by Darren Reed
· 17 years ago
c44a166
the IP6_AND macro (although unused) does not work as it should
by Darren Reed
· 17 years ago
b8bf2a6
update ip_compat.h for NetBSD changes with POLLWAKEUP
by Darren Reed
· 17 years ago
e49e10f
Remove exit/enter of ipf_global lock as they are now no longer held
by Darren Reed
· 17 years ago
85435ff
1849875 race condition nat_flushtable() and fr_check()
by Darren Reed
· 17 years ago
9de8b42
Apply outstanding patch to address various problems in auth code.
by Darren Reed
· 17 years ago
b91d0a5
backport fix from HEAD:
by Darren Reed
· 17 years ago
81a87b8
Fix a bug reported in FreeBSD:
by Darren Reed
· 17 years ago
f7cffc9
Fix two more bugs relating to "auth" rules.
by Darren Reed
· 17 years ago
fcbfa5a
FreeBSD's ip_output() expects ip_len and ip_off in host byte order
by Darren Reed
· 17 years ago
8b92672
remove old comment that is no longer accurate
by Darren Reed
· 17 years ago
48eb49c
Fix:
by Darren Reed
· 17 years ago
4601544
Address the two following issues across all platforms:
by Darren Reed
· 17 years ago
2e72211
remove
by Darren Reed
· 17 years ago
419dcf5
An error in NAT'ing a packet that is being fed through the fastroute code
by Darren Reed
· 17 years ago
5857769
NetBSD has removed rnh_walktree
by Darren Reed
· 17 years ago
d587f80
* holding ipf_global lock over call to fr_ioctlswitch() causes a panic for
by Darren Reed
· 17 years ago
d8f0868
* #ifdef warning fixes from Victor M Blood (FreeBSD) - #1821249
by Darren Reed
· 17 years ago
aa7569b
sunos5x86 Makefile target has been removed from the Makefile
by Darren Reed
· 17 years ago
6d3457f
Backout the "Indent K&R style functions' arguments" commit. According to
by Martti Kuparinen
· 17 years ago
3eb7953
Indent K&R style functions' arguments with one tab as this seems to be
by Martti Kuparinen
· 17 years ago
4a04f46
Removed trailing spaces and tabs.
by Martti Kuparinen
· 17 years ago
5385e85
n16 needs to be cleaned up too
by Darren Reed
· 17 years ago
v4-1-28
ba1a6ac
cleanup unused variable
by Darren Reed
· 17 years ago
0794f9b
update things for 4.1.28
by Darren Reed
· 17 years ago
4d36a73
neti may be in any directory under /kernel/misc, not just sparcv9
by Darren Reed
· 17 years ago
0e7fb9f
by Darren Reed
· 17 years ago
6beae14
Need to search for neti module in sparcv9 directory too
by Darren Reed
· 17 years ago
f06ae35
tidy up declarations and definitions for ip[f_]lookup_deltok and
by Darren Reed
· 17 years ago
0f09136
Cannot rely on compiling against the radix.o in S10U4 and beyond, so IPFilter
by Darren Reed
· 17 years ago
b63f05e
"keep state" needs to treat multicast/broadcast packets as having part of
by Darren Reed
· 17 years ago
2182302
* be more free in making the radix node lock macros do nothing
by Darren Reed
· 17 years ago
6427663
remove duplicated break;
by Darren Reed
· 17 years ago
71bcd66
At the end of listing a pool, it is necessary to delete the token for it
by Darren Reed
· 17 years ago
20d7de4
make it compile with ipfilter 4
by Darren Reed
· 17 years ago
3b40571
update for 4.1.27
by Darren Reed
· 17 years ago
v4-1-27
b73bace
update intstructions for installation
by Darren Reed
· 17 years ago
32be59a
the XARCH flags passed on to compilers now need to be different for sparc
by Darren Reed
· 17 years ago
8f7c211
on i386 systems, both the amd64 and i86 directories are created (unlike
by Darren Reed
· 17 years ago
e81ff6f
try to build ip_rules.[ch] before bailing out with an error because they do not exist
by Darren Reed
· 17 years ago
f2d26c8
* remove sunos5x86 target (no longer used)
by Darren Reed
· 17 years ago
b9722bd
look for the real LKM to clobber in /boot/kernel and /modules rather than
by Darren Reed
· 17 years ago
dcd380e
* keep an orphan count (should always be 0) to alert of problems tracking
by Darren Reed
· 17 years ago
48e0c8c
create 4.1.26
by Darren Reed
· 17 years ago
v4-1-26
1ca37d9
add three entries that pop up on freebsd builds
by Darren Reed
· 17 years ago
7f10afc
Make it 4.1.25
by Darren Reed
· 17 years ago
v4-1-25
2a1e143
use of : to specify a different source program name to the destination did not work
by Darren Reed
· 17 years ago
de9e2b2
replace calls to ipf_route_lookupv* with a single qif_illrouteto
by Darren Reed
· 17 years ago
35a435f
* if a packet that creates a NAT is blocked, delete the NAT (logged via
by Darren Reed
· 17 years ago
0071ce6
clean up the interface to FreeBSD a little
by Darren Reed
· 17 years ago
d09a395
* support the test.format file having command line options for ipftest so
by Darren Reed
· 17 years ago
c124c31
do not check for <0 with unsigned variables and convert char to u_char
by Darren Reed
· 17 years ago
e9affbd
include extension headers in the header data logged for IPv6
by Darren Reed
· 17 years ago
ddc5ef4
defining SPL_SCHED is required on earlier FreeBSD versions
by Darren Reed
· 17 years ago
ec071cd
try not to crash or cause an ioctl to hang when the auth packet ring
by Darren Reed
· 17 years ago
0ebb885
clean up some files that are no longer required and remove dead references
by Darren Reed
· 17 years ago
21c4632
fix some quirks compiling on earlier versions of freebsd
by Darren Reed
· 17 years ago
5597624
destroy ipnat locks before freeing structure (from freebsd)
by Darren Reed
· 17 years ago
168f373
make fr_queueflush do a bit mor work by not looking at removed until
by Darren Reed
· 17 years ago
aff7360
IPFDEBUG is meant to be undefined
by Darren Reed
· 17 years ago
3679d64
add freebsd as a target that selects the main rev of freebsd to build
by Darren Reed
· 17 years ago
38ff41b
Reset the timer for LAST_ACK
by Darren Reed
· 17 years ago
c927ce4
some changes to alignment requirements even for 32bit sparc operations to prevent panics
by Darren Reed
· 17 years ago
cd124f5
Returning from m_pulldown can leave the first mbut with no data (m_len = 0).
by Darren Reed
· 17 years ago
7ae3923
IPv6 fragment headers weren't reporting the inner header, preventing
by Darren Reed
· 17 years ago
c3e578a
* listing ipf and ipnat items looped on the first one.
by Darren Reed
· 17 years ago
c1fdd9d
The windup of using ioctls to list kernel entries could lead to heap pointers
by Darren Reed
· 17 years ago
1a37ba2
import some changes from netbsd
by Darren Reed
· 17 years ago
aa653d3
fix a bug with parsing \ in the middle of a number to mark a continued line
by Darren Reed
· 17 years ago
d1e5d1c
Apply patch to make ipmon extention header aware
by Darren Reed
· 17 years ago
e8d2229
Using "keep state" with "keep frag" results in fragments being blocked
by Darren Reed
· 17 years ago
0b7189f
Make IPFilter 4.1.x run on Solaris10Update4
by Darren Reed
· 17 years ago
b1a1ffb
Make printing out of the age for a map rule consistent with where it is
by Darren Reed
· 17 years ago
cb131f3
state should only be advanced when we see packets that match the
by Darren Reed
· 17 years ago
c689944
this should have been committed with the prior change
by Darren Reed
· 17 years ago
226259f
The simple text input syntax for generating test packets needs to be able
by Darren Reed
· 17 years ago
50274a9
Some redirected packets do not get their ICMP checksum updated correctly,
by Darren Reed
· 17 years ago
d4a58cf
Change how locks are used in the deref functions to improve performance.
by Darren Reed
· 17 years ago
359c4bb
add ':' to the set of port range comparisons available for NAT rules
by Darren Reed
· 17 years ago
4ed4ade
add parsing to allow for inclusive ranges in sets of ports for a "rule" as
by Darren Reed
· 17 years ago
ab0f610
update to 4.1.24
by Darren Reed
· 17 years ago
v4-1-24
d28c49a
update to 4.1.23
by Darren Reed
· 17 years ago
v4-1-23
edc6cf4
update to 4.1.22
by Darren Reed
· 17 years ago
v4-1-22
e0744dd
update to 4.1.21
by Darren Reed
· 17 years ago
v4-1-21
cfcad7c
update to 4.1.20
by Darren Reed
· 17 years ago
v4-1-20
995127a
update to 4.1.19
by Darren Reed
· 17 years ago
v4-1-19
Next »